Low
CVSS 3.5
Overview
CMS Made Simple 1.1.3.1 does not check the permissions assigned to users who attempt uploads, which allows remote authenticated users to upload unspecified files via unknown vectors.
CMS Made Simple 1.1.3.1 does not check the permissions assigned to users who att...
CMS Made Simple 1.1.3.1 does not check the permissions assigned to users who attempt uploads, which allows remote authenticated users to upload unspecified files via unknown vectors.
This vulnerability is rated 🟢 LOW.
Recommended actions: